Condition key and operator information
    • PDF

    Condition key and operator information

    • PDF

    Article summary

    Available in Classic and VPC

    Describes the items related to Condition settings provided by NAVER Cloud Platform.

    Condition key/value

    • Condition key/value: properties information to be applied to the policy. Permission checks are performed by comparing the "key:value" set in the condition key with the "key:value" of the properties where the policy is executed.
    TypeCondition keyDetailsValue inputValue information pathData type
    Principal propertiesncp:principalNameUser name of the Action performerUser nameServices > Management & Governance > Sub Account > Sub Accounts > Sub account detailsString
    ncp:principalIdLogin ID of the Action performerLogin IDServices > Management & Governance > Sub Account > Sub Accounts > Sub account detailsString
    ncp:principaluuidID No of the Action performerIDServices > Management & Governance > Sub Account > Sub Accounts > Sub account detailsString
    ncp:principalTypeType of the Action performerEnter the corresponding value from the following:
  • If the performer is a sub account, enter IamUser.
  • If the performer is a role, enter IamRole.
  • String
    ncp:sourceIdentityIdEach role's target resource if the principalType is IamRole
  • AccountRole: role transitioned user's Sub Account ID
  • SSO Role: role transitioned user's SSO user ID
  • Service Role: role assigned service's resource information
  • AccountRole: Services > Management & Governance > Sub Account > Sub Accounts > Sub account details > ID
  • SSO Role: Services > Management & Governance > Ncloud Single Sign-On > External IdP Login > Users > User details > ID
  • Service Role_Data Flow: Services > Management & Governance > Resource Manager > Service Role connected Data Flow resource's NRN
  • Service Role_Datafence: Services > Management & Governance > Resource Manager > Service Role connected Datafence resource's NRN
  • Service Role_External Access: Services > Management & Governance > Sub Account > External Access > Subject Activity details > Performer
  • String
    ncp:sourceIdentityTypeEach role's user type if the principalType is IamRoleEnter the corresponding value from the following:
  • If AccountRole, enter IamUser.
  • If SSO Role, enter FederatedUser.
  • If Server Role, enter Server
  • If Service Role, enter NcloudService.
  • String
    Resource propertiesncp : resourceTagTags controlling the target resource of the Actionkey:valueString

    Condition operators

    • Operator: a string condition used to check the "key:value" set in the condition key during permission checks.
    TypeDescriptionNote
    StringEqualsString matches exactly (case-sensitive)
  • If the multiple values are included or if 1 of the specified values matches, true.
  • StringNotEqualsString mismatches (case-sensitive)
  • If multiple values are included, nor if all specified values do not match, true.
  • StringLikeString matches similarly (case-sensitive)
  • If the string partially matches including * (multiple wildcard), true.
  • If the multiple values are included or if 1 of the specified values matches, true.
  • StringNotLikeString matches similarly (case-sensitive)
  • If the string partially matches including * (multiple wildcard), true.
  • If the multiple values are included nor if any of the specified values mismatches, true.
  • TypeDescriptionNote
    ~ IfExistsCheck the condition only if the key exists followed by the operator.
  • If it does not exist, true.

  • Was this article helpful?

    Changing your password will log you out immediately. Use the new password to log back in.
    First name must have atleast 2 characters. Numbers and special characters are not allowed.
    Last name must have atleast 1 characters. Numbers and special characters are not allowed.
    Enter a valid email
    Enter a valid password
    Your profile has been successfully updated.